Ausnahme gefangen: SSL certificate problem: certificate is not yet valid ๐Ÿ“Œ CVE-2022-2167 | Newspaper Theme up to 11 on WordPress AJAX Action cross site scripting

๐Ÿ  Team IT Security News

TSecurity.de ist eine Online-Plattform, die sich auf die Bereitstellung von Informationen,alle 15 Minuten neuste Nachrichten, Bildungsressourcen und Dienstleistungen rund um das Thema IT-Sicherheit spezialisiert hat.
Ob es sich um aktuelle Nachrichten, Fachartikel, Blogbeitrรคge, Webinare, Tutorials, oder Tipps & Tricks handelt, TSecurity.de bietet seinen Nutzern einen umfassenden รœberblick รผber die wichtigsten Aspekte der IT-Sicherheit in einer sich stรคndig verรคndernden digitalen Welt.

16.12.2023 - TIP: Wer den Cookie Consent Banner akzeptiert, kann z.B. von Englisch nach Deutsch รผbersetzen, erst Englisch auswรคhlen dann wieder Deutsch!

Google Android Playstore Download Button fรผr Team IT Security



๐Ÿ“š CVE-2022-2167 | Newspaper Theme up to 11 on WordPress AJAX Action cross site scripting


๐Ÿ’ก Newskategorie: Sicherheitslรผcken
๐Ÿ”— Quelle: vuldb.com

A vulnerability was found in Newspaper Theme up to 11. It has been rated as problematic. Affected by this issue is some unknown functionality of the component AJAX Action Handler. The manipulation leads to cross site scripting. This vulnerability is handled as CVE-2022-2167. The attack may be launched remotely. There is no exploit available. It is recommended to upgrade the affected component. ...



๐Ÿ“Œ newspaper Theme up to 6.7.1 on WordPress admin-ajax.php td_ads[header] cross site scripting


๐Ÿ“ˆ 55.73 Punkte

๐Ÿ“Œ CVE-2015-9500 | Exquisite Ultimate Newspaper Theme 1.3.3 on WordPress jquery.foundation.plugins.js cross site scripting (ID 131657)


๐Ÿ“ˆ 44.27 Punkte

๐Ÿ“Œ CVE-2021-24910 | Transposh WordPress Translation Plugin up to 1.0.7 on WordPress AJAX Action cross site scripting


๐Ÿ“ˆ 40.52 Punkte

๐Ÿ“Œ JNews Theme up to 8.0.5 on WordPress POST Request /?ajax-request=jnews cat_id cross site scripting


๐Ÿ“ˆ 36.34 Punkte

๐Ÿ“Œ Facebook for WordPress Plugin up to 3.0.3 on WordPress AJAX Action cross-site request forgery


๐Ÿ“ˆ 36.11 Punkte

๐Ÿ“Œ CVE-2023-6141 | Essential Real Estate Plugin up to 4.3.x on WordPress AJAX Action cross site scripting


๐Ÿ“ˆ 35.65 Punkte

๐Ÿ“Œ CVE-2021-24559 | Qyrr Plugin 0.7 on WordPress AJAX Action data_uri_to_meta cross site scripting


๐Ÿ“ˆ 35.65 Punkte

๐Ÿ“Œ Patreon Plugin up to 1.7.1 on WordPress AJAX Action patreon_save_attachment_patreon_level cross site scripting


๐Ÿ“ˆ 34.47 Punkte

๐Ÿ“Œ Workscout Core Plugin up to 1.3.3 on WordPress AJAX Action workscout_send_message_chat cross site scripting


๐Ÿ“ˆ 34.47 Punkte

๐Ÿ“Œ WPBakery Page Builder Clipboard Plugin up to 4.5.5 on WordPress AJAX Action cross site scripting


๐Ÿ“ˆ 34.47 Punkte

๐Ÿ“Œ 10Web Mobile-Friendly Image Gallery Plugin up to 1.5.68 on WordPress AJAX Action gallery_id gallery_id/tag/album_id/_id cross site scripting


๐Ÿ“ˆ 34.47 Punkte

๐Ÿ“Œ CVE-2023-5313 | phpkobo Ajax Poll Script 3.18 ajax-poll.php improper enforcement of a single, unique action


๐Ÿ“ˆ 34.44 Punkte

๐Ÿ“Œ [webapps] - WordPress Newspaper Theme 6.7.1 - Privilege Escalation


๐Ÿ“ˆ 34.11 Punkte

๐Ÿ“Œ [webapps] - WordPress Newspaper Theme 6.7.1 - Privilege Escalation


๐Ÿ“ˆ 34.11 Punkte

๐Ÿ“Œ Geo Magazine | Modern Responsive Newspaper | News Portal WordPress Theme v2.0 - Unauthenticated Reflected XSS


๐Ÿ“ˆ 34.11 Punkte

๐Ÿ“Œ newspaper Theme up to 6.7.1 on WordPress Access Control td_ajax_update_panel privilege escalation


๐Ÿ“ˆ 34.11 Punkte

๐Ÿ“Œ CVE-2021-24890 | Scripts Organizer Plugin up to 2.x on WordPress AJAX Action saveScript cross-site request forgery


๐Ÿ“ˆ 32.42 Punkte

๐Ÿ“Œ CVE-2023-45052 | WP Bing Map Pro Plugin up to 4.1.4 on WordPress AJAX Action cross-site request forgery


๐Ÿ“ˆ 32.42 Punkte

๐Ÿ“Œ CVE-2023-5534 | AI ChatBot Plugin up to 4.8.9 on WordPress AJAX Action cross-site request forgery


๐Ÿ“ˆ 32.42 Punkte

๐Ÿ“Œ CVE-2023-45606 | Simple URLs Plugin up to 120 on WordPress AJAX Action cross-site request forgery


๐Ÿ“ˆ 32.42 Punkte

๐Ÿ“Œ CVE-2023-5756 | Supsystic Digital Publications Plugin up to 1.7.6 on WordPress AJAX Action cross-site request forgery


๐Ÿ“ˆ 32.42 Punkte

๐Ÿ“Œ CVE-2023-5953 | Welcart e-Commerce Plugin up to 2.9.4 on WordPress AJAX Action cross-site request forgery


๐Ÿ“ˆ 32.42 Punkte

๐Ÿ“Œ CVE-2023-3178 | POST SMTP Mailer Plugin up to 2.5.6 on WordPress AJAX Action manage_postman_smtp cross-site request forgery


๐Ÿ“ˆ 32.42 Punkte

๐Ÿ“Œ CVE-2021-24870 | WP Fastest Cache Plugin 0.9.5 on WordPress AJAX Action wpfc_save_cdn_integration cross-site request forgery


๐Ÿ“ˆ 32.42 Punkte

๐Ÿ“Œ Webdorado Contact Form Builder Plugin up to 1.0.68 on WordPress wp-admin/admin-ajax.php $_GET['action'] cross site request forgery


๐Ÿ“ˆ 31.24 Punkte

๐Ÿ“Œ Webdorado Contact Form Plugin up to 1.13.4 on WordPress wp-admin/admin-ajax.php action cross site request forgery


๐Ÿ“ˆ 31.24 Punkte

๐Ÿ“Œ 10Web Form Maker Plugin up to 1.13.4 on WordPress wp-admin/admin-ajax.php action cross site request forgery


๐Ÿ“ˆ 31.24 Punkte

๐Ÿ“Œ CVE-2013-0202 | ownCloud up to 4.0.10/4.5.5 core/ajax/sharing.php action cross site scripting (XFDB-81476 / OSVDB-89510)


๐Ÿ“ˆ 30.77 Punkte

๐Ÿ“Œ Ajax Pagination Plugin 1.1 on WordPress wp-admin/admin-ajax.php ajax_navigation loop directory traversal


๐Ÿ“ˆ 30.17 Punkte

๐Ÿ“Œ WP-jobhunt Plugin up to 2.4 on WordPress AJAX Request admin-ajax.php cs_reset_pass() privilege escalation


๐Ÿ“ˆ 30.17 Punkte

๐Ÿ“Œ WP-jobhunt Plugin up to 2.4 on WordPress AJAX Request admin-ajax.php cs_employer_ajax_profile() information disclosure


๐Ÿ“ˆ 30.17 Punkte

๐Ÿ“Œ Ajax Load More Plugin up to 5.3.1 on WordPress /wp-admin/admin-ajax.php repeater sql injection


๐Ÿ“ˆ 30.17 Punkte

๐Ÿ“Œ Ajax Pagination Plugin 1.1 auf WordPress wp-admin/admin-ajax.php ajax_navigation loop Directory Traversal


๐Ÿ“ˆ 30.17 Punkte

๐Ÿ“Œ Ajax Pagination Plugin 1.1 auf WordPress wp-admin/admin-ajax.php ajax_navigation loop Directory Traversal


๐Ÿ“ˆ 30.17 Punkte

๐Ÿ“Œ CVE-2023-45556 | MyBB 1.8.33 Theme Management Theme Name cross site scripting (GHSA-4xqm-3cm2-5xgf)


๐Ÿ“ˆ 29.84 Punkte











matomo